Назад
Company hidden
2 дня назад

Cyber Detection Engineering Lead (Cybersecurity)

Формат работы
onsite
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
Germany
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Cyber Detection Engineering Lead (Cybersecurity) (Python/MITRE ATT&CK/Sigma): Architecting and developing high-fidelity detection logic, detection-as-code initiatives, and automated response playbooks for a SOC with an accent on threat intelligence translation, telemetry analysis, and resilient coverage of attacker techniques. Focus on standardizing detection lifecycles, mapping detections to MITRE ATT&CK, mentoring detection engineers, and resolving complex security escalations.

Location: Munich area, Germany, with possible work locations in Manching, Taufkirchen/Ottobrunn, Immenstaad am Bodensee, and Ulm.

Company

hirify.global develops aerospace and defence products and operates a global, diverse organization.

What you will do

  • Define the long-term detection engineering vision, technical roadmap, and standardized development lifecycle.
  • Architect, develop, maintain, and optimize high-fidelity SOC detection rules.
  • Translate cyber threat intelligence and attacker tactics, techniques, and procedures into resilient detection logic.
  • Drive detection-as-code initiatives and automate incident response playbooks.
  • Serve as the escalation point for complex technical issues and mentor detection engineers and SOC analysts.
  • Collaborate with Incident Response and SOC teams to deploy context-rich detections for rapid threat containment.

Requirements

  • Degree in Computer Science, Cybersecurity, Information Technology, or equivalent practical experience.
  • Proven experience developing SOC use cases and detection logic, including leadership or mentorship experience.
  • Strong proficiency in Python and practical experience with automation frameworks.
  • Deep technical expertise in Windows and Linux internals, system logging, and telemetry analysis.
  • Practical Red Teaming, penetration testing, or offensive security experience.
  • Advanced knowledge of MITRE ATT&CK and detection-as-code concepts, combined with strong collaborative communication skills.

Culture & Benefits

  • Permanent, full-time employment with attractive compensation and additional benefits.
  • 30 days of annual leave based on a 35-hour working week and flexible working hours.
  • Mobile working, part-time options, job sharing, and sabbatical opportunities where applicable.
  • Professional development opportunities and international career perspectives.
  • Company pension schemes, mobility offers, corporate discounts, health programs, and selected-site childcare facilities.
  • Diverse and inclusive working environment with more than 140 nationalities.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →